28 Commits

Author SHA1 Message Date
William Pitcock
82b52ff70c main/ipsec-tools: remove *.la files 2011-06-29 16:58:19 -05:00
Timo Teräs
2e54a215bd main/ipsec-tools: one more fix for grekey support
sainfo matching needs to allow wildcard matching.
2011-03-30 17:19:16 +03:00
Timo Teräs
6185e1ece1 main/ipsec-tools: refresh gre-support patch
It was missing some ulport swaps that caused isakmp quick mode
as responder to fail under certain cases.
2011-03-30 09:39:25 +03:00
Timo Teräs
3d8a02ea6a main/ipsec-tools: update to 0.8.0
Remove one patch merged upstream.
2011-03-19 09:16:28 +02:00
Timo Teräs
ba7a48af9f main/ipsec-tools: update to 0.8.0 RC, and include additional patches
* improve handling of setups where single node participates to
   multiple dmvpn networks. enable using of grekey in setkey,
   SPD and sainfo; also match remoteconfs using sainfo ph1id
2011-03-04 13:59:01 +02:00
William Pitcock
ba2600dc6e Set all packages with arch="x86 x86_64" to arch="all". 2011-01-13 06:06:02 -06:00
Natanael Copa
da49ad32c4 main/*: add arch 2010-12-13 16:00:16 +00:00
Timo Teräs
fd5fc13c1d main/ipsec-tools: upgrade to snapshot 2010-12-08
* remove patches merged upstream
2010-12-08 13:14:11 +02:00
Timo Teräs
2ac5487348 main/ipsec-tools: fix for improving delete notify handling
the old one could crash under some rare circumstances (deleting
responder mode ph1 in very early state).
2010-11-15 09:34:39 +02:00
Timo Teräs
8fe94be6c0 main/ipsec-tools: add a patch to improve delete notify handling
if phase1 rekeying is enabled, remote side deleting the last
phase1 will result in deletion of all the ipsec-sa's and will
execute the phase1_dead script hook too (so every one knows
the traffic between the two nodes has ceased).
2010-11-04 17:00:26 +02:00
Timo Teräs
25dcef4ae9 main/ipsec-tools: two new fixes
* update adminport to work with huge replies
* defer handling of DH calculations for isakmp identity reponse
  (this helps to handle things in right order if we are getting
   multiple simultaneous connection requests; this also makes
   the previous receive buffer size change mostly irrelevant)
2010-10-29 15:19:22 +03:00
Timo Teräs
d8510349a3 main/ipsec-tools: update to 2010-10-22 snapshot
remove patches committed upstream. and add a patch for dpd related
minor fix.
2010-10-27 10:35:19 +03:00
Timo Teräs
aa248c9684 main/ipsec-tools: racoonctl socket buffer size patch
will fix certain racoonctl errors if there are multiple simultaneous
connections and the system socket buffer size is set low.
2010-10-14 15:56:40 +03:00
Timo Teräs
d9500f762a main/ipsec-tools: add a patch to modify receive buffer size
this fixing behaviour on long backbuffer of packets to start
dropping packets instead of processing them late.
2010-08-20 15:05:21 +03:00
Timo Teräs
25825baec8 main/ipsec-tools: use openssl in oneshot mode
Use the highlevel EVP and HMAC functions to calculate oneshot
digest and HMAC. This enable the use of crypto accelerators for
these operations.
2010-06-04 12:16:41 +03:00
Natanael Copa
9ca82f726f main/[various]: rebuild against openssl-1.0 2010-05-14 17:57:16 +00:00
Natanael Copa
b4eecaf058 main/[various]: bump pkgrel to force rebuild against nptl 2010-05-04 08:26:51 +00:00
Timo Teras
a545b82478 main/ipsec-tools: add patch for fd priorities
it improves admin port responsiveness under high load.
2010-03-09 09:53:54 +02:00
Natanael Copa
b9df3004d7 main/ipsec-tools: start after ntp-client
fixes #261
2010-02-08 13:16:43 +00:00
Natanael Copa
d6e71e02a4 main/ipsec-tools: fix a memleak in the initial-contact patch
the patch should fix reconnection on unstable lines but contained a
memory leak. This is an update of the same patch.
2009-12-10 15:06:17 +00:00
Natanael Copa
770bfbbb34 main/ipsec-tools: initial contact fix
Reset remote node contacted state if all related security associates
are purged.

Fixes issues with unstable internet connections.
2009-12-09 14:45:25 +00:00
Natanael Copa
4cc5da6be4 main/ipsec-tools: provide ipsec
so opennhrp start after racoon.
2009-09-25 15:05:14 +00:00
Natanael Copa
f40ad7078b main/ipsec-tools: start service after firewall 2009-09-15 14:06:49 +00:00
Timo Teras
3bb9b2ed2a main/ipsec-tools: update to 20090903 snapshot
remove the patch merged upstream.
2009-09-03 13:42:21 +04:00
Timo Teras
1444ddae64 main/ipsec-tools: bump up to 20080820 snapshot
remove patches merged upstream, minor fix to reverse-connect
patch and add new "phase1 hints when rekeying" patch to help
rekeying in some nat scenarios.
2009-08-20 16:56:16 +03:00
Natanael Copa
b2140f790d main/ipsec-tools: update checksum and bump pkgrel 2009-08-05 14:32:10 +00:00
Mika Havela
b7ad336743 Adding SETKEY_OPTS parameter to init.d and conf.d files This helps users to append e.g. '-k' option to the setkey command by modifying their /etc/conf.d/racoon file 2009-08-05 14:27:06 +00:00
Natanael Copa
b70981b68e moved extra/* to main/
and fixed misc build issues
2009-07-24 08:01:31 +00:00